You are here

Firewall Rules?

3 posts / 0 new
Last post
w6bi
w6bi's picture
Firewall Rules?
A user asked, and I realized, that I don't really know how the firewall rules function in the AREDN software. Can someone point me to an explanation?

Thanks.

Orv W6BI
 
AE6XE
AE6XE's picture
I don't recall any
I don't recall any documentation around the firewall rules previously created.  Part of security is not publishing information.    In summary:

* the rules protect the node -- can't access anything except a service intended to be available -- ssh, telnet, http, snmp, iperf, etc. (if installed)
* the rules allow forwarding of traffic for the mesh node to serve it's core purpose: routing between dtdlink, wan, lan, and tunnels.
* incoming access from the WAN (internet) is blocked except services on the node intended to be accessible.  
* support for advertised gateway and options in setup allowing LAN devices to access internet or not.
* does not block access between devices on the mesh (unless using NAT mode on a node's LAN).

Joe AE6XE
W6RUF
W6RUF's picture
We need a “LIKE” button
great response. Like.

Theme by Danetsoft and Danang Probo Sayekti inspired by Maksimer